Security Engineer
Toronto, Ontario, Canada·Posted today
aicybersecuritysaaspythongoawsgcp
<div class="content-intro"><p> </p> <div class="p-rich_text_section">At Varicent, we’re not just transforming the Sales Performance Management (SPM) market—we’re redefining how organizations achieve revenue success. Our cutting-edge SaaS solutions empower revenue leaders globally to design smarter go-to-market strategies, maximize seller performance, and unlock untapped potential. Varicent stands at the forefront of innovation, celebrated as a market leader in the <em data-stringify-type="italic">2025 Forrester Wave Report for SPM</em>, <em data-stringify-type="italic">2023 Ventana Research Revenue Performance Management (RPM) Value Index</em>, <em data-stringify-type="italic">Gartner Peer Insights</em>, <em data-stringify-type="italic">2024 Gartner SPM Market Guide</em>, and <em data-stringify-type="italic">G2. </em>Our solutions are trusted by a diverse range of global industry leaders like T-Mobile, ServiceNow, Wawanesa Bank, Shaw Industries, Moody's, Stryker and hundreds more. Here’s why you’ll thrive at Varicent:</div> <ul class="p-rich_text_list p-rich_text_list__bullet p-rich_text_list--nested" data-stringify-type="unordered-list" data-list-tree="true" data-indent="0" data-border="0"> <li data-stringify-indent="0" data-stringify-border="0"><strong data-stringify-type="bold">Innovate with Purpose: Build impactful solutions for customers worldwide.</strong></li> <li data-stringify-indent="0" data-stringify-border="0"><strong data-stringify-type="bold">Join Excellence: Work in a diverse, collaborative, and innovative team.</strong></li> <li data-stringify-indent="0" data-stringify-border="0"><strong data-stringify-type="bold">Shape the Future: Lead in redefining revenue optimization.</strong></li> <li data-stringify-indent="0" data-stringify-border="0"><strong data-stringify-type="bold">Grow Together: Unlock your potential in a supportive environment.</strong></li> </ul> <div class="p-rich_text_section">Join us at Varicent—where your talent and ambition meet limitless opportunities for success!</div></div><h2 data-pm-slice="1 1 []">The Opportunity</h2> <p>Varicent is looking for a hands-on <strong>Security Engineer</strong> to join our Information Security team and help strengthen the security of our systems, applications, and cloud environments.</p> <p>This is a broad security engineering role for someone who enjoys being close to the technology while working across security operations, tooling, vulnerability management, incident response, and risk assessments. You’ll partner with Engineering, Cloud Operations, IT, and business teams to identify risks, improve security controls, and continuously strengthen how we protect our environment.</p> <p>You’ll also have opportunities to work on emerging areas such as <strong>AI security, threat modeling, security automation, and integrating security testing into CI/CD pipelines.</strong></p> <h2>What You’ll Do</h2> <h3>Security Engineering & Tooling</h3> <ul data-spread="false"> <li> <p>Deploy, configure, monitor, and improve security technologies including <strong>SIEM, EDR, DLP, WAF, CASB, Secure Web Gateway, email security, and vulnerability scanning tools</strong></p> </li> <li> <p>Own and improve assigned security tools, including runbooks, workflows, documentation, and operational processes</p> </li> <li> <p>Lead small-to-medium security initiatives from requirements and design through testing and implementation</p> </li> <li> <p>Support security technology evaluations and proof-of-concepts</p> </li> </ul> <h3>Security Monitoring & Incident Response</h3> <ul data-spread="false"> <li> <p>Investigate and triage security events across endpoint, cloud, network, application, and email environments</p> </li> <li> <p>Support incident response investigations, root-cause analysis, escalation, and lessons learned</p> </li> <li> <p>Identify opportunities to improve detection capabilities and reduce recurring security issues</p> </li> </ul> <h3>Vulnerability Management & Security Testing</h3> <ul data-spread="false"> <li> <p>Support infrastructure, endpoint, and application vulnerability scanning, penetration-testing validation, and AI red-team testing</p> </li> <li> <p>Validate and prioritize vulnerabilities and partner with technical teams to drive remediation</p> </li> <li> <p>Coordinate rapid response to high-priority risks and zero-day vulnerabilities</p> </li> <li> <p>Help integrate <strong>SAST, DAST, SCA, and external attack surface management</strong> into CI/CD workflows</p> </li> <li> <p>Identify opportunities to automate repetitive security activities</p> </li> </ul> <h3>Risk, Threat Modeling & AI Security</h3> <ul data-spread="false"> <li> <p>Conduct security risk assessments for internal initiatives, product changes, vendors, and productivity tools</p> </li> <li> <p>Perform <strong>STRIDE-based threat modeling</strong>, including assessments of AI-enabled tools and applications</p> </li> <li> <p>Evaluate AI and Agentic AI security risks and recommend practical mitigations</p> </li> <li> <p>Support third-party risk assessments and workflows using <strong>OneTrust</strong></p> </li> </ul> <h2>What You’ll Bring</h2> <ul data-spread="false"> <li> <p>5+ years of experience in <strong>Information Security, Security Engineering, or Security Operations</strong></p> </li> <li> <p>Bachelor’s degree in Information Security, Computer Science, Computer Engineering, Technology Management, or equivalent practical experience</p> </li> <li> <p>At least one relevant security certification, such as <strong>CISSP, CISA, CCSP, or equivalent</strong></p> </li> <li> <p>Hands-on experience with security technologies such as <strong>SIEM, EDR, WAF, DLP, and vulnerability scanning platforms</strong></p> </li> <li> <p>Experience securing public cloud environments such as <strong>AWS, GCP, or IBM Cloud</strong></p> </li> <li> <p>Working knowledge of security across operating systems, networks, applications, databases, and cloud environments</p> </li> <li> <p>Understanding of security frameworks and standards such as <strong>NIST CSF and ISO 27001/27002</strong></p> </li> <li> <p>Familiarity with controls supporting <strong>SOC 1, SOC 2, PCI, and HIPAA</strong></p> </li> <li> <p>Ability to investigate technical issues, document findings clearly, and communicate security risk effectively</p> </li> <li> <p>Professional proficiency in English</p> </li> </ul> <h2>Nice to Have</h2> <ul data-spread="false"> <li> <p>Experience integrating security scanning, alerting, ticketing, or security gates into <strong>CI/CD pipelines</strong></p> </li> <li> <p>Security automation or scripting experience using <strong>Python, PowerShell, or Bash</strong></p> </li> <li> <p>Hands-on experience with <strong>OneTrust</strong></p> </li> <li> <p>Experience conducting <strong>STRIDE threat modeling and security risk assessments</strong></p> </li> <li> <p>Exposure to <strong>AI security, Agentic AI risks, or AI red-team testing</strong></p> </li> </ul> <h2>What Success Looks Like</h2> <p>In your first few months, you’ll become familiar with our security environment, tooling, incident response processes, and vulnerability management program while contributing directly to investigations and security assessments.</p> <p>As you grow into the role, you’ll take ownership of security initiatives, improve vulnerability and risk-management processes, develop threat models for new technologies—including AI-enabled solutions—and identify opportunities for automation.</p> <p>Over time, you’ll help us improve security signal quality, strengthen incident response readiness, reduce recurring risks, and become a trusted security partner to our Engineering, Cloud, and IT teams.</p> <h2>Additional Information</h2> <p>The expected base salary range for this role is <strong>C$87,500–C$108,300</strong>, and individuals may also be eligible to participate in our variable compensation program.</p> <p>Final compensation may vary based on experience, skills, designations, and market conditions.</p> <p>This posting is for an existing vacancy.</p> <p>This hiring process utilizes artificial intelligence tools to assist in candidate screening and assessment. Our AI tools are designed to complement, not replace, human decision-making.</p> <p> </p><div class="content-conclusion"><p></p> <div>Varicent is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. If you require accommodation at any time during the recruitment process please email accomodations@varicent.com</div> <div> </div> <div>Varicent is also committed to compliance with all fair employment practices regarding citizenship and immigration status. By applying for a position at Varicent and/or by using this portal, you declare and confirm that you have read and agree to our<a class="postings-link" href="https://www.varicent.com/recruitment-portal-privacy-notice"> Job Applicant Privacy Notice</a> and that the information provided by you as part of your application is true and complete and includes no misrepresentation or material omission of fact</div> <p></p></div>